|
200871
|
9.8 |
CRITICAL
Network
|
jeecg
|
jeecg_boot
|
An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-28088
|
2024-11-21 14:22 |
2021-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200872
|
7.5 |
HIGH
Network
|
jeecg
|
jeecg_boot
|
A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sensitive database information.
|
CWE-89
SQL Injection
|
CVE-2020-28087
|
2024-11-21 14:22 |
2021-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200873
|
7.5 |
HIGH
Network
|
siemens
|
dk_standard_ethernet_controller_evaluation_kit_firmware ek-ertec_200_evaulation_kit_firmware ek-ertec_200p_evaluation_kit_firmware ruggedcom_rm1224_firmware scalance_m-800_firmware sca…
|
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial-of-service condition. The vulnerability can be triggered if a large amount of DCP reset packets ar…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2020-28400
|
2024-11-21 14:22 |
2021-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200874
|
7.8 |
HIGH
Local
|
prusa3d
|
prusaslicer
|
An out-of-bounds write vulnerability exists in the Admesh stl_fix_normal_directions() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted AMF file can…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-28598
|
2024-11-21 14:22 |
2021-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200875
|
4.3 |
MEDIUM
Network
|
dovecot fedoraproject
|
dovecot fedora
|
The Sieve engine in Dovecot before 2.3.15 allows Uncontrolled Resource Consumption, as demonstrated by a situation with a complex regular expression for the regex extension.
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2020-28200
|
2024-11-21 14:22 |
2021-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200876
|
5.9 |
MEDIUM
Physics
|
linux netapp
|
linux_kernel cloud_backup h410c_firmware h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware
|
The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgacon_scrolldelta out-of-bounds read, aka CID-973c096f6a85.
|
CWE-125
Out-of-bounds Read
|
CVE-2020-28097
|
2024-11-21 14:22 |
2021-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200877
|
7.5 |
HIGH
Network
|
gulpjs oracle
|
glob-parent communications_cloud_native_core_policy
|
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2020-28469
|
2024-11-21 14:22 |
2021-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200878
|
9.8 |
CRITICAL
Network
|
articlecms_project
|
articlecms
|
A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2020-28063
|
2024-11-21 14:22 |
2021-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200879
|
7.5 |
HIGH
Network
|
siemens
|
scalance_xm-400_firmware scalance_xr524_firmware scalance_xr526_firmware scalance_xr528_firmware scalance_xr552_firmware scalance_xm416-4c_firmware scalance_xm408-8c_firmware sca…
|
An unauthenticated remote attacker could create a permanent denial-of-service condition by sending specially crafted OSPF packets. Successful exploitation requires OSPF to be enabled on an affected d…
|
-
|
CVE-2020-28393
|
2024-11-21 14:22 |
2021-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
200880
|
7.8 |
HIGH
Local
|
openscad
|
openscad
|
An out-of-bounds write vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can …
|
CWE-787
Out-of-bounds Write
|
CVE-2020-28600
|
2024-11-21 14:22 |
2021-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|